CVE Vulnerabilities

CVE-2016-5950

Published: Feb 01, 2017 | Modified: Feb 09, 2017
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

IBM Kenexa LCMS Premier on Cloud stores user credentials in plain in clear text which can be read by an authenticated user.

Affected Software

Name Vendor Start Version End Version
Kenexa_lcms_premier Ibm 9.0 (including) 9.0 (including)
Kenexa_lcms_premier Ibm 9.1 (including) 9.1 (including)
Kenexa_lcms_premier Ibm 9.2 (including) 9.2 (including)
Kenexa_lcms_premier Ibm 9.2.1 (including) 9.2.1 (including)
Kenexa_lcms_premier Ibm 9.3 (including) 9.3 (including)
Kenexa_lcms_premier Ibm 9.4 (including) 9.4 (including)
Kenexa_lcms_premier Ibm 9.5 (including) 9.5 (including)
Kenexa_lcms_premier Ibm 10.0 (including) 10.0 (including)
Kenexa_lcms_premier Ibm 10.1 (including) 10.1 (including)
Kenexa_lcms_premier Ibm 10.2 (including) 10.2 (including)

References